Legal updates and opinions
News / News
Information Regulator issues Guidelines for the development of Codes of Conduct effective 1 March 2021
by Ahmore Burger-Smidt, Director and Head of Data Privacy Practice and member of Competition Law Practice; and Dimakatso Khumalo, Candidate Attorney
- On 22 February 2021, the South African Information Regulator (“Regulator“) published Guidelines to develop Codes of Conduct (“Guidelines“) under the Protection of Personal Information Act No. 4 of 2013 (“POPIA“).
- It is probable that organisations which fall within the same industry will encounter similar or even identical data protection issues. Codes of Conduct provide such organisations with useful guidance on industry-standard approaches to these issues. By developing and implementing Codes of Conduct, organisations are in a better position to demonstrate to individuals that it takes their data protection rights seriously. This, in turn, may persuade those individuals to do business with that organisation rather than with its competitors.
- The South African economy is saturated by a plethora of industries/industry sectors, and professional and vocational bodies (“industry bodies“). All these industry bodies have distinct and unique ways of managing their business, profession or vocation to an extent that there is not a one size fits all compliance approach across all industries. As a consequence, industry specific dynamics ought to inform the way forward considering the impact of POPIA industry members. The conditions and implementation for the lawful processing of personal information under POPIA will undoubtedly be influenced by the distinct features that each of these industry bodies possess. The members of these industry bodies are expected to collect different personal information of their clients as well as employees in order to conduct their business.
- The Guidelines (once effected) envisage to direct and assist relevant bodies, including bodies or class of bodies of specified industries, professions, or vocations, to draft their own Codes of Conduct with the aim ofcompliance with the provisions of POPIA. The Guidelines establish a standard that the Regulator will apply when evaluating Codes of Conduct for approval and also afford to those industries, considering the implementation of a code of conduct, a practical guide to clearly address the aspects that the Regulator deems important.
- The Guidelines will assist relevant bodies to prepare and submit for approval Codes of Conduct to the Regulator. It aims to provide a step by step process guidance. It is clear from the guidelines that industry bodies should conduct consultation with their stakeholders and decide on their own procedures and processes to be followed in dealing with, not only complaints, but also with overall compliance with POPIA through more specific and tailored compliance mechanisms. Simply put, the Codes of Conduct serve as a Roadmap to Compliance.
- These industry bodies will therefore benefit tremendously from Codes of Conduct which are more specific and professional orientated, and which target the unique aspects of the profession they are regulating, while remaining compliant with the provisions of POPIA.
- The guidelines can be downloaded and reviewed in order to consider what impact they will have on you organisation
Latest News
When can a trade union operate outside the ambit of its constitution?
This question was answered by the Labour Appeal Court recently in National Union of Metalworkers of SA & others v [...]
Combatting climate change, one block at a time…
Blockchain, the decentralised database that stores information electronically on a computer network, is synonymous with using large quantities of electricity [...]
Characterisation: Much ado about nothing
"Characterisation is the biggest problem of our time" according to the Competition Commission's (Commission) Cartels Division Manager's statement at the [...]
SARS v Wiese provides clarity on the collection of tax debt from third parties
By Kyle Fyfe, Director Tax Administration Act In a recent judgment of the High Court in a claim for declaratory [...]
Code of conduct of the Banking Association of South Africa: Finally approved
We have, on multiple occasions, published articles on the Banking Association of South Africa's (BASA) code of conduct. On 11 [...]
The right of access to information vs. The right to privacy
The right of access to information is a unique right in the Constitution of the Republic of South Africa, 1996 [...]